VYPR

security-advisories

by Nextcloud

CVEs (41)

  • CVE-2024-52515MedNov 15, 2024
    risk 0.00cvss 5.7epss 0.01

    Nextcloud Server is a self hosted personal cloud system. After an admin enables the default-disabled SVG preview provider, a malicious user could upload a manipulated SVG file referencing paths. If the file would exist the preview of the SVG would preview the other file instead.…

Page 3 of 3